Updates on the latest cybersecurity threats to businesses, data breach disclosures, and how you can secure your firm in an increasingly risky time.
Cyber Security Today, Week in Review for Feb. 2, 2024
This episode features discussion on hacks at 23andMe, Microsoft, the Canadian government, and on the FBI's warning on the cyber threat from China
2/2/2024 • 30 minutes, 2 seconds
Cyber Security Today, Feb. 2, 2024 - AI fakes are making trouble for facial recognition logins, and more
This episode reports on US government action on vulnerable Ivanti gateways and more
2/2/2024 • 4 minutes, 47 seconds
Cyber Security Today, Jan. 31, 2024 -A new ransomware strain found, and questions about the level of ransomware payments
This episode reports on ransomware news, a survey of infosec pros in the financial sector and more
1/31/2024 • 5 minutes, 10 seconds
Cyber Security Today, Jan. 29, 2024 - SolarWinds demands fraud allegation be dropped, a Canadian sentenced for ransomware attacks, and more
This episode reports on the need for every organization to have contact information on security issues, and more
1/29/2024 • 8 minutes, 21 seconds
Cyber Security Today, Week in Review for Friday, Jan. 26, 2024
This episode features a discussion on a hack at Microsoft, the recommendations of the Network Resilience Coalition, a report on AI and cyber threats and more
1/26/2024 • 27 minutes, 10 seconds
Cyber Security Today, Jan. 26, 2024 - US government employees slammed for backing forbidden videocam purchases, and more
This episode reports on an investigation into why US federal IT staff pushed for the purchase of forbidden video cameras, record data breach numbers last year in the US, and more
1/26/2024 • 5 minutes, 46 seconds
Cyber Security Today, Jan. 24, 2024 - The latest ransomware news and a controversy over alleged viruses in HP printer cartridges
This episode reports on ransomware attacks on a North American firm that manages water utilities ,and more
1/24/2024 • 6 minutes, 34 seconds
Cyber Security Today, Jan. 22, 2024 - the LockBit ransomware gang hits the Subway fast food chain, and this is the start of Data Privacy Week
This episode reports on ransomware attacks, an undetected attack on a VMware hole and more
1/22/2024 • 5 minutes, 56 seconds
Cyber Security Today, Week in Review for Friday Jan. 19, 2024
This episode features a discussion on cryptocurrency scammers hacking X accounts, the arrest of a Ukrainian man for using hacked cloud accounts to create 1 million virtual servers for mining cryptocurrency and how an accounting firm employee fell for a phishing email pretending to be from the CEO led to a data breach
1/19/2024 • 28 minutes, 16 seconds
Cyber Security Today, Jan. 19, 2024 - Vulnerabilities found in server firmware, a warning to Docker administrators, and more
This episode reports on firmware updates from hardware manufacturers that IT admins should be watching for, a phishing warning to Middle Eastern expets and more
1/19/2024 • 4 minutes, 59 seconds
Cyber Security Today, Jan. 17, 2024 - Security updates issued for Atlassian, Citrix, VMware and Chrome products
This epsiode reports on the latest security updates for a range of products
1/17/2024 • 7 minutes, 23 seconds
Cyber Security Today, Jan. 15, 2024 - Three warnings to application developers
This episode covers reports with warnings to application developers from Recorded Future and Gitlab; how an accounting company was victimized by a phishing message, and more
1/15/2024 • 7 minutes, 14 seconds
Cyber Security Today, Week in Review for the week ending Friday, Jan. 12, 2024
This episode features a discussion about the state of cybersecurity jobs
1/12/2024 • 22 minutes
Cyber Security Today, Jan. 12, 2024 - A Chinese hacking group's reach may be bigger than we thought
This episode reports on scams aimed at employees, a report on the Medusa ransomware group, the latest on the number of data breach victims and more
1/12/2024 • 6 minutes, 40 seconds
Cyber Security Today, Jan. 10, 2024 - Vulnerabilities found in internet-connected factory torque wrenches
This episode reports on a hole found in Bosch industrial torque wrenches, attacks on Microsoft SQL servers, and more
1/10/2024 • 4 minutes, 23 seconds
Cyber Security Today, Jan 8, 2024 - How a Spanish cellular carrier's network was knocked offline, and more
This episode reports on basic cybersecurity oversights that led to the hacking of a teclo, the increased number of victims of a US law firm hack, a data breach at a Canadian provider of midwives and more
1/8/2024 • 9 minutes, 11 seconds
Cyber Security Today, Jan. 5, 2024 - 23andMe blames poor user password practices for a data breach
Russian hackers were inside the biggest Ukrainian telecom provider for at least seven months before knocking it offline last month. This and other news are in the podcast
1/5/2024 • 5 minutes, 16 seconds
Cyber Security Today, Jan 3, 2024 - Prepare for upcoming privacy legislation
This episode reports on Canadian and American privacy bills before legislatures, ransomware news and more
1/4/2024 • 6 minutes, 30 seconds
Cyber Security Today, Dec. 29, 2023 - Get cracking on your cybersecurity strategic plan
Don't have a cybersecurity strategic plan? Here's how to start building one
12/29/2023 • 5 minutes, 4 seconds
Cyber Security Today, Dec. 27, 2023 - A record year for ransomware
This episode reports on the latest ransomware and vulnerability numbers for 2023
12/27/2023 • 2 minutes, 56 seconds
Cyber Security Today, Year in Review for 2023
This episode features a discussion about the biggest cybersecurity stories of 2023, and predictions for 2024
12/22/2023 • 56 minutes, 14 seconds
Cyber Security Today, Dec. 20, 2023 - Data on over 35 million Comcast customers stolen because patching wasn't fast enough
This episode reports on a warning of a vulnerability in the SSH protocol, the latest multi-million person data breaches and more
12/20/2023 • 5 minutes, 59 seconds
Cyber Security Today, Dec. 18, 2023 - Customer contact info stolen from MongoDB, more stringent American cyber attack reporting rules start today, and more
This episode reports on the new SEC cyber attack rules that come into effect today, guidance from the NSA on creating a software bill of rights, and more
12/18/2023 • 8 minutes
Cyber Security Today, Week in Review for Friday Dec. 15, 2023
This epsiode features discussion on how much responsibility governments should shoulder to fight ransomware, why North Korea's Lazarus group is still exploiting the two-year old Log4j vulnerability and the latest on insider attacks
12/15/2023 • 34 minutes, 9 seconds
Cyber Secuity Today, Dec. 15, 2023 - A botnet expands, threats to unpatched TeamCity servers, and more
This episode reports on the growth of the KV-botnet, the discovery of another unprotected database on the internet, and more
12/15/2023 • 5 minutes, 33 seconds
Cyber Security Today, Dec. 13, 2023 - Mystery surrounds the outage at a ransomware gang's site, and more
This episode reports on a new phishing scam aimed at job recruiters, and more
12/13/2023 • 7 minutes, 6 seconds
Cyber Security Today, Dec. 11, 2023 - Irish water treatment plant shut by cyber attack, WordPress issues a security patch, and more
This episode reports on a US hospital chain notifying 2.5 million patients and employees about data stolen in a ransomware attack, and more
12/11/2023 • 7 minutes, 52 seconds
Cyber Security Today, Week in Review for Friday, Dec. 8, 2023
This episode features discussion on cyber attacks against OT networks, the discovery of exposed servers with medical images and why outdated Microsoft Exchange servers are still alive
12/8/2023 • 26 minutes, 40 seconds
Cyber Security Today, Ransomware is increasingly impacting OT systems, and more
This episode reports on how hackers break into AWS cloud instances, fake anti-Ukraine online ads using photos of celebrities, and more
12/8/2023 • 6 minutes, 12 seconds
Cyber Security Today, Dec. 6, 2023 - Warnings about Russian-based cyber attacks, and more
This episode reports on abuse of Go language repositories, unpatched Outlook servers targeted by Russian group, and more
12/6/2023 • 5 minutes, 50 seconds
Cyber Security Today, Dec. 4, 2023 - A warning to water treatment utilities, a boot vulnerability could affect millions of PCs, and more
This episode reports on a campaign against critical infrastructure using PLCs, a vulnerability in PCs, and more
12/4/2023 • 7 minutes, 8 seconds
Cyber Security Today, Week in Review for Friday, Dec. 1, 2023
This episode features a discussion on ransomware, the latest explanation from Okta of a support hack and a survey of infosec pros whose firms were hacked
12/1/2023 • 28 minutes, 4 seconds
Cyber Security Today, December 1, 2023 -More on Booking.com compromises
This episode reports on how a hotel allowed its reservation system to be abused by a crook, US hits at a cyrptocurrency mixer used by North Korea, and more
12/1/2023 • 4 minutes, 58 seconds
Cyber Security Today, Nov. 29, 2023 - More ransomware attacks on the healthcare sector
This episode reports on a company hit twice by a ransomware gang, the arrest in Ukraine of the alleged head of a ransomware gang, and more
11/29/2023 • 5 minutes, 4 seconds
Cyber Security Today, Nov. 27, 2023 - Ransomware gang posts data stolen from Canadian Point of sale provider, and more
This episode reports on the latest ransomware attacks, and details of how a gang that scams people selling used products online works
11/27/2023 • 5 minutes, 45 seconds
Cyber Security Today, Week in Review for Friday, Nov. 24, 2023
This episode features discussion on Australia's decision to not make ransomware payments illegal, huge hacks of third-party service suppliers in Canada and the U.S. and whether email and smartphone service providers are doing enough to protect customers
11/24/2023 • 27 minutes, 22 seconds
Cyber Security Today, Nov. 24, 2023 - A warning to tighten security on Kubernetes containers, and more
This episode reports on the increasing number of vulnerable Kubernetes containers online, the latest acknowledged data breaches, a browser scam aimed at Macs, and more
11/24/2023 • 5 minutes, 43 seconds
Cyber Security Today, Nov. 22, 2023 -Boeing division hacked through NetScaler vulnerability, and more
This episode reports on unpatched holes that are being exploited by threat actors, and more
11/22/2023 • 5 minutes, 58 seconds
Cyber Security Today, Nov. 20, 2023 - Forbid ransomware payments, says a Canadian hospital
This episode reports on ransomware attacks and 1.6 million more victims of MOVEit hacks
11/20/2023 • 6 minutes, 20 seconds
Cyber Security Today, Week in Review for week ending Friday, Nov. 17, 2023
This episode features a discussion on lessons learned from a huge cyber attack in Denmark, and more
11/17/2023 • 28 minutes, 58 seconds
Cyber Security Today, Nov. 17, 2023 - A company's slip may have led to a hack, free AI and incident response advice, and more
This episode reports on claims by a threat actor that they used a former employee's still active credentials for a data theft, and more
11/17/2023 • 5 minutes, 42 seconds
Cyber Security Today, Nov. 15, 2023 - A new ransomware gang emerges, a patching failure was behind a co-ordinated cyber attack on Denmark, and more
This episode reports on the latest ransomware news, why a sophisticated attack on Denmark's critical infrastructure providers was so effective, and more
11/15/2023 • 5 minutes, 46 seconds
Cyber Security Today, Nov. 13, 2023 - Booking.com attack may be widespread, ransomware operator calls it quits, and more
This episode reports on a cyber attack on the operator of ports in Australia, the hack of a reporter's Experian account, the latest data breaches, and more
11/13/2023 • 6 minutes, 19 seconds
Cyber Security Today, Week in Review for the week ending Friday, Nov. 10,. 2023
This episode features discussion on Okta explanation of a hack, Cloudflare's explanation of a power outage and more
11/10/2023 • 33 minutes, 8 seconds
Cyber Security Today, Nov.10, 2023 - Patch SysAid software fast, how Ukraine's power system was crippled by Russia and more
This episode reports on a sophisticated OT and IT attack on Ukraine by Russia's Sandworm gang, how failing to patch a firewall fast led to a regulatory fine and more
11/9/2023 • 5 minutes, 52 seconds
Cyber Security Today, Nov. 8, 2023 - Personal data on US military members is easily bought from data brokers, and more
This episode reports on a university investigation into data brokers, new malware and how hackers could have gotten into medical software
11/8/2023 • 6 minutes, 59 seconds
Cyber Security Today, Nov. 6, 2023 - Okta employee is faulted for a hack, another US school board's data stolen, and more
This episode reports on the cause of a recent hack at Okta, personal data stolen from the emaill of employees at a fast food chain, a proxy botnet found and more
11/6/2023 • 7 minutes, 42 seconds
Cyber Security Today, Week in Review for the week ending Friday Nov. 3, 2023
This episode features a discussion on changes laid by the SEC against SolarWinds, the latest meeting of the International Counter Ransomware Initiative, cyber attacks on libraries and the departure of CEO John Chen from BlackBerry.
11/3/2023 • 26 minutes, 26 seconds
Cyber Security Today, Nov. 3, 2023 - Hackers are after vulnerable Apache and Citrix products
This episode reports on threat actors going after holes in Apache ActiveMQ and Airflow, as well as Citrix NetScaler Gateway appliances
11/3/2023 • 5 minutes, 39 seconds
Cyber Security Today, Nov. 1, 2023 - Atlassian warns admins to patch Confluence servers, GitHub being raided for AWS credentials and more
This episode reports on a huge haul of US government workers email addresses stolen in a MOVEit hack, malware in the NuGet open source code respository and more
11/1/2023 • 6 minutes, 3 seconds
Cyber Security Today, Oct. 30, 2023 - Hackers warn Las Vegas-area parents they have their children's data
This episode reports on the results of the latest Toronto edition of Pwn2Own contest, hacks at a US hospital, an e-commerce processor and more MOVEit victims
10/30/2023 • 8 minutes, 15 seconds
Cyber Security Today, Week in Review for the week ending Friday, Oct. 27, 2023
This episode features a discussion on the recent Okta hack, an attack on a Canadian shared services provider to five Canadian hospitals, the SecTOR conference and more.
10/27/2023 • 30 minutes, 15 seconds
Cyber Security Today, Oct. 27, 2023 - Malware hiding as a cryptominer may have infected 1 million PCs since 2017
This episode reports on a data-stealing gang that's added ransomware to its arsenal, a new UK law forcing social media platforms to police harmful content and more
10/27/2023 • 5 minutes, 44 seconds
Cyber Security Today, Oct. 25, 2023 - Ransomware attacks hit a record in September, and more
This episode reports on a security update warning from VMware, the discovery of a new ransomware strain and more
10/25/2023 • 4 minutes, 43 seconds
Cyber Security Today, Oct. 23, 2023 - Okta's support system hacked, and examples to use for cyber awareness training
This episode reports on the latest security updates from Cisco, SolarWinds and Siemens, and tricks hackers use to pass on to employees in awareness training
10/23/2023 • 7 minutes, 19 seconds
Cyber Security Today, Week in Review for the week ending Friday, Oct. 20, 2023
It's early but already experts are making cybersecurity predictions for 2024. We take a look at four of them
10/20/2023 • 21 minutes, 17 seconds
Cyber Security Today, Oct. 20, 2023 - Free anti-phishing guidance, ransomware gang sunk for not patching Confluence servers, and more
This episode reports on what could be a fatal mistake for a ransomware gang
10/20/2023 • 4 minutes, 19 seconds
Cyber Security Today, Oct. 18, 2023 - Patch this Cisco vulnerability now
This episode reports on another warning to patch Confluence servers and a WordPress plugin, an advanced threat actor leveraging Discord, and more
10/18/2023 • 5 minutes, 14 seconds
Cyber Security Today, Oct. 16, 2023 - Why a hacker created a fake conference website after the event, and more
This episode reports on Equifax UK fined US$13 million, Microsoft paying for finding AI vulnerabilities and more
10/16/2023 • 5 minutes, 10 seconds
Cyber Security Today, Week in Review for Friday, Oct. 11, 2023
This episode features discussion on a possible SEC investigation of the MOVEit hacks, the theft of data from 23andMe, the Top 10 cybersecurity misconfigurations, and more
10/13/2023 • 26 minutes, 59 seconds
Cyber Security Today, Oct. 13, 2023 -- A ransomware gang offers cash for employees to betray their firms
Hackers are trying to exploit unpatched Atlassian Confluence servers and Progress Software WS_FTP file transfer software, and more
10/13/2023 • 5 minutes
Cyber Security Today, Oct. 11, 2023 - IT administrators warned of serious vulnerabilities in web servers and in cURL
This episode reports on the latest security updates for a wide variety of applications
10/11/2023 • 7 minutes, 9 seconds
Cyber Security Today, Oct. 9, 2023 - US bank notifies over 800,000 of a MOVEit hack, data stolen from a DNA test service, and more
This episode reports on more MOVEit hack news, a US settlement in the Blackbaud ransomware attack and more
10/9/2023 • 6 minutes, 36 seconds
Cyber Security Today, Week in Review for the week ending Friday, Oct. 6, 2023
This episode features a discussion on how to create an effective cybersecurity awareness program
10/6/2023 • 23 minutes, 49 seconds
Cyber Security Today, Oct. 6, 2023 - The Qakbot gang is still operating
This episode reports on a malware gang that wasn't completely taken out by police, a warning to admins overseeing Confluence servers and more
10/6/2023 • 4 minutes, 39 seconds
Cyber Security Today, Oct. 4, 2023 - Critical vulnerabilities found in Linux and TorchServe
This episode reports on phishing email messages leveraging a hold in the Indeed job platform, warnings on poor firmware patching and on internet-connected ICS systems
10/4/2023 • 5 minutes, 43 seconds
Cyber Security Today, Oct. 2, 2023 - Advice for creating a cybersecurity awareness program
For October Cyber Security Awareness Month this episode offers tips on how to build an effective awareness program
10/2/2023 • 6 minutes, 20 seconds
Cyber Security Today, Week in Review for the week ending Friday, Sept. 29 ,20023
This episode features discussion on October Security Awareness Month, ransomware, teenage hackers and the start of hearings into proposed Canadian privacy and AI laws
9/29/2023 • 26 minutes, 37 seconds
Cyber Security Today, Sept. 29, 2023 - Protect your routers from this attacker, new open source malware packages found, and more
This episode reports on a China-based group that specializes in hacking branch office routers of major companies
9/29/2023 • 5 minutes, 56 seconds
Cyber Security Today, Sept. 27, 2023 - Hackers are targeting luxury hotels, a Red Cross scam and more
This episode reports on phishing campaigns against the hospitality sector, a new ransomware operator and more
9/27/2023 • 4 minutes, 41 seconds
Cyber Security Today, Sept. 25, 2023 - Hackers from India say they are targeting Canadian web sites
This episode reports on a retaliation threat against Canadian websites, the impact of the Dallas ransomware attack, and more
9/25/2023 • 6 minutes, 3 seconds
Cyber Security Today, Week in Review for the week ending Friday, Sept. 22, 2023
This episode features discussion about the MGM Resorts ransomware attack, and on recent DDoS attacks against Canadian websites
9/22/2023 • 27 minutes, 5 seconds
Cyber Security Today, Sept. 23, 2023 - Nova Scotia details MOVEit victims, a new ransomware strain found and more
This podcast reports on the latest number of MOVEit victims, new ransomware numbers and more
9/22/2023 • 5 minutes, 28 seconds
Cyber Security Today, Sept. 20, 2023 - A new online card-skimming campaign, new WinServer backdoors and more
This episode reports on the possiblity that thousands of internet-facing Juniper SRX firewalls and EX switches may be at risk from a new way to exploit a recently discovered vulnerability, and more
9/20/2023 • 5 minutes, 30 seconds
Cyber Security Today, Sept. 18, 2023 - How a deepfake voice caused a company to be hacked
This episode reports on a sophisticated scam, and lessons that can be taught for security awareness training
9/18/2023 • 5 minutes, 33 seconds
Cyber Security Today, Week in Review for the week ending Friday, Sept. 15, 2023
This episode features discussion on Microsoft's explanation of how the hack of one of its software developers led to one of the most amazing breaches of email security, a ransomware report from the U.K., a Business Council of Canada report on security and why the .US domain is being used so much for phishing attacks.
9/15/2023 • 26 minutes, 39 seconds
Cyber Security Today, Sept. 15, 2023 podcast - Warning: This group specializes in SMS texting scams
An alert about a group that focuses on tricking IT support staff by claiming to be an employee who needs to reset their password, and more
9/15/2023 • 5 minutes, 4 seconds
Cyber Security Today, Sept. 13, 2023 - Crooks target Facebook Messenger accounts of businesses, a warning to IT support staff and more
This episode reports on the latest security updates, a scam aimed at IT service desk staff of American organizations that use access management solutions from Okta, and more
9/13/2023 • 5 minutes, 56 seconds
Cyber Security Today, Sept 11, 2023 - Warnings from Cisco, a huge DDoS attack and more MOVEit and ransomware victims
This episode reports on vulnerabilities that have to be dealt with in Cisco applications, the sentencing of a Russian businessman in the US to nine years in prison for his role in a nearly US$100 million stock market cheating scheme, and more
9/11/2023 • 8 minutes, 17 seconds
Cyber Security Today, Week in Review for Friday, September 8, 2023
This episode features a discussion between IT World Canada CIO Jim Love and Adam Evans, chief information and security officer of Royal Bank of Canada
9/8/2023 • 35 minutes, 2 seconds
Cyber Security Today, Sept. 8, 2023 - Are boards and CISOs communicating, the latest ransomware data and more
This episode reports on the latest survey of boards on cybersecurity, and more
This episode reports on what your organization might need to get and keep cyber insurance -- or whether you should self-insure by setting up a rigorous cybersecurity program
9/6/2023 • 3 minutes, 45 seconds
Cyber Security Today, Sept. 4, 2023 - Cybersecurity tips for parents as the new school year starts
This episode offers cybersecurity and privacy advice and links to websites for parents about to send their kids back to school
9/4/2023 • 3 minutes, 10 seconds
Cyber Security Today, Week in Review for the week ending Sept. 1, 2023
This episode features discussion on International Women in Cybersecurity Day, a Canadian cybercrime report, the takedown of the Quakbot bot and the attacks on Barracuda Networks' ESG email gateways
9/1/2023 • 24 minutes, 48 seconds
Cyber Security Today, Sept. 1, 2023 - Celebrate Women in Cyber Security
This episode reports on more bad packages in open-source repositories, and why you shouldn't play the date game
9/1/2023 • 5 minutes, 4 seconds
Cyber Security Today, August 30, 2023 - More ransomware and MOVEit attack numbers, and an attack on a Rust repository
This episode reports on QR codes being used by threat actors, statistics on ransomware and MOVEit hacks, and more
8/30/2023 • 5 minutes, 36 seconds
Cyber Security Today, August 28, 2023 -- SIM card swap led to a Kroll data breach, supplier hack led to a London police data theft, and more
This episode reports on several newly revealed hacks, including the theft of the names and ranks of 47,000 London police and staff stolen after a hacker got into the IT systems of a firm that prints police warrant cards and staff passes
8/28/2023 • 6 minutes, 43 seconds
Cyber Security Today, Week in Review for Friday, August 25, 2023
This episode features a discussion about zero trust and the cyber attack on Tesla by former employees
8/25/2023 • 22 minutes, 34 seconds
Cyber Security Today, August 25, 2023 - FBI warning about Barracuda ESG gateways and thousands of more US MOVEit victims
This episode reports on what some crooks are doing with stolen personal data, and more
8/25/2023 • 4 minutes, 54 seconds
Cyber Security Today, August 23, 2023 -Public exposure doesn't deter this attacker, and more
This episode reports on a persistent attacker, security updates for Ivanti Sentry and more
8/23/2023 • 4 minutes, 36 seconds
Cyber Security Today, August 21, 2023 - The latest ransomware news, and security patches issued by Cisco, Juniper and Jenkins
This episode includes reports on how much Dallas paid for a ransomware incident response, data released by the Black Basta ransomware gang after an attack on a U.S. housing authority and more
8/21/2023 • 6 minutes, 14 seconds
Cyber Security Today, Week in Review for Friday, August 18, 2023
This episode features a discussion on a report into the successes of the Lapsus$ extortion gang, a ransomware attack against a Canadian non-profit, a vulnerability in the WiFi module of the infotainment system of some Ford vehicles and whether governments should mandate minimum cybersecurity standards for internet-connected devices
8/18/2023 • 30 minutes, 34 seconds
Cyber Security Today, August 18, 2023 -- CISA urges action on a Citrix File Share vulnerability, and more
This episode reports on a hole in the naming policies of modules developers can put in Microsoft's PowerShell Gallery, lessons from a honeypot test and more
8/18/2023 • 5 minutes, 40 seconds
Cyber Security Today, August 16, 2023 - Discord.io database of 760,000 up for sale, LinkedIn under attack and more MOVEit victims
This episode reports on the most recent data breaches and an extortion campaign against LinkedIn users who lose access to their accounts
8/15/2023 • 7 minutes, 32 seconds
Cyber Security Today, August 14, 2023 - A huge insurance company hack, presentations at the Black Hat conference, and more
This episode reports on the hack of Hub International, advantages of honeypots, artificial intelligence and more
8/14/2023 • 7 minutes, 51 seconds
Cyber Security Today, Week in Review for Friday, August 11, 2023
This episode features discussion on preventing ransomware in schools, a UK report on ransomware and insurance, the MOVEit hacks and sports teams and venues as cyber targets
8/11/2023 • 25 minutes, 7 seconds
Cyber Security Today, August 11, 2023 - Employee mistake leads to Northern Ireland police data breach, why employee awareness training is vital, and more
This episode reports on the latest phishing attacks, attacks on unsupported and unpatched Zyxel routers and more
8/11/2023 • 4 minutes, 44 seconds
Cyber Security Today, August 9, 2023 - The latest ransomware news, and more
This episode reports on the latest trends in ransomware attacks, and security updates from Microsoft, SAP and PaperCut
8/9/2023 • 7 minutes, 1 second
Cyber Security Today, August 7, 2023 - Ransomware attack hits US hospitals, a Canadian insurer is sideswiped by MOVEit hacks, and more
This episode reports on the latest victims of MOVEit hacks, data thefts at Colorado's Department of Higher Education, and more
8/7/2023 • 7 minutes, 42 seconds
Cyber Security Today, Week in Review for Friday, August 4, 2023
This repeat episode is a conversation with Aaron McIntosh, co-author of the Ransomware Task Forces' Blueprint for Ransomware Defence.
8/4/2023 • 29 minutes, 39 seconds
Cyber Security Today, August 4, 2023 -- The shadow hanging over your IT network
This episode looks at a recent from the UK National Cyber Security Centre on shadow IT
8/4/2023 • 2 minutes, 51 seconds
Cyber Security Today, August 2, 2023 - A valuable report from the CISA
This episode reports on lessons from an analysis by the U.S. Cybersecurity and Infrastructure Security Agency (CISA) on 121 assessments it did on security incidents last year
8/2/2023 • 3 minutes, 2 seconds
Cyber Security Today, July 31, 2023 - Warning to Linux administrators, and more
This episode reports on two alerts to admins with Linux in their environments and a caution for web site and web application developers
7/31/2023 • 4 minutes, 15 seconds
Cyber Security Today, Week in Review for Friday July 28, 2023
This episode features a discussion on the latest news in artificial intelligence, women in cybersecurity and data breach reporting
7/28/2023 • 24 minutes, 22 seconds
Cyber Security Today, July 28, 2023 - At least 8 million Americans hit in the latest MOVEit hack, and more
This podcast reports on the need to patch MikroTik routers and Ivanti's Endpoint Manager Mobile and more
7/28/2023 • 4 minutes, 55 seconds
Cyber Security Today, July 26, 2023 - Reports on successful ransomware attacks, on stolen credentials for accessing business applications, and more
This episode reports on the slow adoption of DMARC protection, infected packages in open source repositories and more
7/26/2023 • 7 minutes, 45 seconds
Cyber Security Today, July 24, 2023 - MOVEit hacker tries to squeeze victims, an apology for a data leak from VirusTotal, and more
This episode reports on a patch for Adobe OpenMeetings, a lack of patching of Zyxel devices, allegations that Microsoft's security breach may be worse than thought, and more
7/24/2023 • 7 minutes, 48 seconds
Cyber Security Today, Week in Review for Friday, July 21, 2023
This episode features a discussion on an attacker forging a Microsoft authentication key for cloud access, developers including private keys in Docker containers, the continuing increase in ransomware attacks and more
7/21/2023 • 24 minutes, 30 seconds
Cyber Security Today, July 21, 2023 - MOVEit victim numbers climb higher, news on spyware, and more
This episode reports on the latest news in the MOVEIt hack, spyware, attribution in the JumpCloud hack and more
7/21/2023 • 4 minutes, 1 second
Cyber Security Today, July 19, 2023 - The Sturmous ransomware group is back, a ransomware gang adds a new backdoor, and more
This episode reports on the jailing of an IT security analyst who tried leverage a cyber attack to extort money from the U.K. company he worked for, an AI chatbot for crooks, and more
7/19/2023 • 7 minutes, 31 seconds
Cyber Security Today, July 17, 2023 - USB-based attacks rising, attacks on AWS increasing and more
This episode reports on attacks on AWS, Azure and Google Cloud environments, Russia's attempt to disconnect from the global internet and more
7/17/2023 • 7 minutes, 33 seconds
Cyber Security Today, Week in Review for Friday, July 14, 2023
This episode features discussion on insider threats, the pace of cybersecurity spending by the private sector, how hackers are creating voice fakes and the responsibilities of CEOs during a cyber attack
7/14/2023 • 24 minutes, 26 seconds
Cyber Security Today, July 14, 2023 - Ransomware payments are up, Google is squeezing bad Android developers, and more
This episode reports on ransomware statistics, the release of the source code for the BlackLotus bootkit and the release of the implementation plan for the U.S. National Cybersecurity Strategy
7/14/2023 • 4 minutes, 40 seconds
Cyber Security Today, July 12, 2023 - There are now over 270 MOVEit hack victims, a record number of Patch Tuesday fixes, and more
This episode reports on the cyber trial of a British teen, NATO cyber strategy, how a CEO should respond to a cyber attack and more
7/12/2023 • 7 minutes, 43 seconds
Cyber Security Today, July 10, 2023 - A second insurance company sideswiped by the MOVEit hack, a Truebot malware warning, and more
This episode reports on the discovery of another unprotected database of personal information, an analysis of new ransomware variants and more
7/10/2023 • 9 minutes, 11 seconds
Cyber Security Today, Week in Review for Friday July 7, 2023
This episode features a discussion with Aaron McIntosh, co-author of the Ransomware Task Force's Blueprint for Ransomware Defense
7/7/2023 • 29 minutes, 48 seconds
Cyber Security Today, July 7, 2023 - Sour news from a honeypot network
How much can infosec pros learn from a honeypot? This podcast answers that question
7/7/2023 • 3 minutes, 51 seconds
Cyber Security Today, July 5, 2023 - Advice to firms on the right way to collect personal data
A look back at Canadian privacy commissioners' report into problems with the Tim Hortons mobile app
7/5/2023 • 3 minutes, 15 seconds
Cyber Security Today, July 3, 2023 - The latest ransomware news, a warning to WordPress Ultimate Member administrators, and more
This episode reports on the availability of a decryptor for Akira ransomware, a $70 million ransomware demand and more
7/3/2023 • 6 minutes, 27 seconds
Cyber Security Today, Week in Review for Friday, June 30, 2023
This episode features a discussion on the Suncor cyber attack, the costs of the Indigo ransomware attack and the value of SIEMs
6/30/2023 • 24 minutes, 11 seconds
Cyber Security Today, June 30, 2023 - Good news and bad news about ransomware
This episode reports on a new information-stealing malware, crooks cloning voices for virtual kidnapping and more
6/30/2023 • 5 minutes, 10 seconds
Cyber Security Today, June 28, 2023 - More banks added to the target list of Android malware, and the latest data breach news
This episode reports on the latest victim of the MOVEit vulnerability, the impact of Europol's dismantling of an encrypted communications service used by crooks and more
6/28/2023 • 6 minutes, 48 seconds
Cyber Security Today, June 26, 2023 - The latest data breaches, and a Twitter hacker sentenced to five years
This episode reports on a US insurance firm and a state employees' pension fund caught in the MOVEit hack of a supplier, pilots of two airlines caught in the hack of one of their partners, an infected USB key that led to a hospital being hacked, and more
6/26/2023 • 8 minutes, 29 seconds
Cyber Security Today, Week in Review for June 23, 2023
This episode features a discussion on calls by several civil rights groups for the Canadian government to tighten up its proposed cybersecurity law, the proper way companies should notify victims of a data breach, why cybercrooks like using the Telegram Messaging service and more
6/23/2023 • 28 minutes, 38 seconds
Cyber Security Today, June 23, 2023 - New ransomware data, a salary transfer scam that victimize employees and more
This episode reports on the increasing number of ransomware attacks, an email scam that tricks firms into switching payment bank accounts of employees and more
6/23/2023 • 4 minutes, 36 seconds
Cyber Security Today, June 21, 2023 - More MOVEit victims, more ransomware news and 100,000 stolen ChatGPT credentials are up for sale
This episode reports on patches for Asus routers, a new Russian email server attack on Ukraine, a ransomware gang takes credit for an attack on Reddit and more
6/21/2023 • 6 minutes, 58 seconds
Cyber Security Today, June 19, 2023 - Millions of Americans caught in MOVEit hacks, the latest DDoS news, and more
This episode reports on the latest news on MOVEit hacks, a DDoS site taken down by police in Poland and more
6/19/2023 • 7 minutes, 35 seconds
Cyber Security Today, Week in Review for Friday, June 16, 2023
This episode features a discussion on paying ransomware demands, a crimeware gang whose targets include small and medium businesses and why some developers are less than careful with their API keys.
6/16/2023 • 21 minutes, 48 seconds
Cyber Security Today, June 16, 2023 - Beware of fake profiles on GitHub, and are you an optimist or pessimist CISO?
This episode reports on GitHub being abused by a threat actor, surveys of infosec pros and more
6/16/2023 • 4 minutes, 24 seconds
Cyber Security Today, June 14, 2023 - A warning for users of Microsoft's digital signature tool, an alert to VMware administrators, and more
This episode reports on crime and punishment, civil fines for Microsoft and Spotify and more
6/14/2023 • 6 minutes, 45 seconds
Cyber Security Today, June 12, 2023 - Replace compromised Barracuda email gateways, and more holes found in MOVEit
This episode reports on the latest news in the MOVEit compromise saga, a successful attack on a SharePoint online customer, recent data breaches and more
6/12/2023 • 9 minutes, 16 seconds
Cyber Security Today, Week in Review for the week ending Friday June 9, 2023
This episode features a discussion on the Nova Scotia health data breach, the compromise of the MOVEit file transfer application and more
6/9/2023 • 26 minutes, 25 seconds
Cyber Security Today, June 9, 2023 - The annual Data Breach Investigations Report is here
This episode looks at some of the numbers gathered from 16,000 cybersecurity incidents in the annual Verizon report
6/9/2023 • 3 minutes, 44 seconds
Cyber Security Today, June 7, 2023 - Why a CISO should be on your board
This episode looks at the traits a firm should consider if appointing a CISO to the board of directors
6/7/2023 • 3 minutes, 36 seconds
Cyber Security Today, June 5, 2023 - Data stolen from Swiss authorities, a new skimmer attack on Web sites, and more
This episode reports on the BlackSuit ransomware strain, an expected EU privacy fine against Microsoft, a warning about an attack on web sites and more
6/5/2023 • 6 minutes, 30 seconds
Cyber Security Today, Week in Review for the week ending Friday, June 2, 2023
This episode features a discussion on a report into the ransomware attack on Newfoundland's IT healthcare system, a penalty paid by a US medical billing supplier over a data breach, an Australian company's estimate of the costs of a ransomware attack and the sentencing in the U.S. of two Nigerian cyber crooks.
6/2/2023 • 26 minutes, 28 seconds
Cyber Security Today, June 2, 2023 - A new way of compromising the PyPI repository found, warning for MOVEit file transfer users, and more
This episode reports on ransomware attacks, a proposed US$25 million fine against Amazon and more
6/2/2023 • 5 minutes, 58 seconds
Cyber Security Today, May 31, 2023 - Almost 9 million victims in a data breach, a database of crooks is published, and more
This episode reports on CAPTCHA evasion, more exploits added to the Murai botnet and more
5/31/2023 • 7 minutes, 27 seconds
Cyber Security Today, May 29, 2023 - Two US companies pay $850,000 for data breaches, and more
This episode reports on a new ransomware gang, new industrial control malware and advice for infosec leaders from a CISO whose firm suffered a ransomware attack
5/29/2023 • 7 minutes, 11 seconds
Cyber Security Today, Week in Review for Friday, May 26, 2023
This episode features a discussion on employees who contributed to a company hack by sharing a password to an email account the spread of a fake image posted on Twitter of an explosion supposedly near the Pentagon and more
5/26/2023 • 21 minutes, 3 seconds
Cyber Security Today, May 26, 2023 - Hackers are using YouTube to flog pirated software, and more
This episode reports on data breach notifications, an updated hacking tool, surveys of infosec pros and more
5/26/2023 • 4 minutes, 7 seconds
Cyber Security Today, May 24, 2023 - Generative AI used for child porn, Google to pay Washington state millions for misleading location practices, and more
This episode reports on an IT security analyst convicted of trying to extort his own company, cybersecurity problems with government agencies in Utah and more
5/24/2023 • 5 minutes, 42 seconds
Cyber Security Today, May 22, 2023 - G7 nations speak out on cybercrime and artificial intelligence, the latest ransomware news, and more
This episode reports on more financial penalties for a US firm's data breach, the PyPI registry can't keep up with added malware, Dole pays $US10.5 million to repair computers after ransomware attack and more
5/22/2023 • 8 minutes, 22 seconds
Cyber Security Today, Week in Review for Friday, May 19, 2023
This episode features discussion about this week's U.S. Senate hearing on regulating artificial intelligence, the release of school schematics by a ransomware gang, a cybersecurity company fooled by a fake onboarded employee and the latest use of facial recognition software
5/19/2023 • 28 minutes, 20 seconds
Cyber Security Today, May 19, 2023 - Beware of .zip websites, Dropbox is abused by crooks, infected Android phones and more
This episode reports on how crooks are leveraging Dropbox and the new .,zip domain, offers tips for vacation travelers and more
5/19/2023 • 4 minutes, 58 seconds
Cyber Security Today, May 17, 2023 - An email invoice scam that impersonates your boss, a new ransomware gang discovered and more
This episode reports on a new DDoS attack tactic, a U.S. pharmaceuticals company reports a data breach of 5.8 million people, attacks on TP-Link routers and more
5/17/2023 • 6 minutes, 16 seconds
Cyber Security Today, May 15, 2023 - Patch this WordPress plugin hole fast, a data breach at a Discord provider and more
This episode reports on man-in-the-middle attacks, a new GitHub security tool, a warning about possibly fake MSI firmware updates and more
5/15/2023 • 7 minutes, 34 seconds
Cyber Security Today, Week in Review for Friday May 12, 2023
This week's review features a discussion between Jim Love and David Shipley on the progress in the fight against ransomware
5/12/2023 • 23 minutes, 42 seconds
Cyber Security Today: May 12, 2023 - How Dragos was fooled by an attacker impersonating a new employee, and more
This episode reports on lessons learned in a breach of security controls, a data breach at SchoolDude, a ransomware warning to admins with VMware hypervisors and more
5/12/2023 • 8 minutes, 14 seconds
Cyber Security Today: May 10, 2023 - A new ransomware strain called Cactus is found, and more
This episode reports on a survey of CISOs and more
5/10/2023 • 2 minutes, 48 seconds
Cyber Security Today, May 8, 2023 - Sheriff's office pays a $1 million ransom, American health records provider hacked, and more
This episode reports on a new ransomware gang, an update on a ransomware attack on an American private university and more
5/8/2023 • 4 minutes, 26 seconds
Cyber Security Today, Week in Review for Friday May 5th, 2023
This episode features a discussion on the latest news about ChatGPT, data thefts of from test and decommissioned servers and whether the FBI needs more money to fight cybercrime
5/5/2023 • 20 minutes, 58 seconds
Cyber Security Today, May 5, 2023 - Data breach at the Metropolitan Opera, and more GoAnywhere MFT victims
This episode reports on PayPal being used to send fake invoices and more
5/5/2023 • 5 minutes, 2 seconds
Cyber Security Today, May 3, 2023 - A ransomware gang threatens American university students, Samsung tells staff to stop using ChatGPT, and more
This episode reports on ransomware, a data theft at Yellow Pages Canada, ra[od Apple patches and more
5/3/2023 • 5 minutes, 33 seconds
Cyber Security Today, May 1, 2023 - Another Amnesty International branch hacked, the Catholic Diocese of Las Vegas compromised and more
This episode reports on increasingly good fake checkout pages being used on compromised e-commerce sites, malware hiding in supposedly free versions of utilities and games and more
5/1/2023 • 7 minutes, 20 seconds
Cyber Security Today, Week in Review for Friday, April 28, 2023
This episode includes a discussion on the merits of the supervised super-penetration tests major Canadian banks and insurance companies will have to undergo
4/28/2023 • 28 minutes, 40 seconds
Cyber Security Today, April 28, 2023 - Data on over 340 million people exposed so far this year
This episode reports on the need to update applications from Veeam, Apache, VMware, and more
4/28/2023 • 5 minutes, 6 seconds
Cyber Security Today, April 26, 2023 - New reports on ransomware and cyber attacks, new tools used by attackers, and more
This episode reports on common factors in successful ransomware attacks, new tools used by threat actors and a call to update PaperCut servers
4/26/2023 • 5 minutes, 49 seconds
Cyber Security Today, April 24, 2023 podcast
This episode reports on infected versions of popular business apps circulating on the internet, attackers are getting into Kubernetes access control and the impact of the X_Trader supply chain attack
4/24/2023 • 4 minutes, 8 seconds
Cyber Security Today, Week in Review for the week ending Friday, April 21, 2023
This episode features a discussion on the supply chain attack that led to the 3CX supply chain attack, how organizations using Fortra's vulnerable GoAnywhere MFT platform might have stopped ransomware attacks, sensitive data found on used routers and more
4/21/2023 • 25 minutes, 9 seconds
Cyber Security Today, April 21, 2023 - Is the LockBit ransomware gang slipping, or is IT allowing them to look good?
This podcast looks at slips by the LockBit ransomware gang, and how one attack was helped by poor cyber hygiene
4/21/2023 • 5 minutes, 41 seconds
Cyber Security Today, April 19, 2023 - Ransomware gang hits CommScope, unsanitized routers being re-sold and more
This episode reports on a new collaboration to create new malware, the latest email campaign using the QBot malware and more
4/19/2023 • 5 minutes, 19 seconds
Cyber Security Today, Apri 17, 2023 - NCR's Aloha POS system hit by ransomware, attackers ask big money from Western Digital, and more
This episode reports on new macOS ransomware, a warning to accounting and tax preparation firms on a scam, and more
4/17/2023 • 7 minutes, 3 seconds
Cyber Security Today, Week in Review for Friday, April 14, 2023
This episode features a discussion on the alleged cyber attack against a Canadian gas pipeline, identity management, Windows patches and a new piece of commercial spyware
4/14/2023 • 25 minutes, 3 seconds
Cyber Security Today, April 14, 2023 -More DDoS attacks against Canada, Russia's Nobelium group targeting NATO countries and more
This episode reports on the latest data breaches, an attack on internet-connected irrigation systems in Israel and more
4/14/2023 • 5 minutes, 19 seconds
Cyber Security Today, April 12, 2023 - Install this Windows Server patch fast, a warning to Azure administrators and more
This episode reports on details of a commercial spyware company, an issue in Microsoft's Azure storage accounts, how crooks try to bypass Google's Play store with malicious apps and more
4/12/2023 • 7 minutes, 16 seconds
Cyber Security Today, April 10 2023 - Cyber attack hits PC maker MSI, another GoAnywhere MFT victim and more
This episode reports on data breaches, a Ukrainian utility compromised after an employee downloads pirated Microsoft Office, alleged dodgy activity by Tesla and Samsung employees and more
4/10/2023 • 9 minutes, 38 seconds
Cyber Security Today, Week in Review for Friday April 7, 2023
This episode features a discussion on the 3CX supply chain hack, new ransomware, the takedown of the criminal Genesis marketplace and more.
4/7/2023 • 21 minutes, 40 seconds
Cyber Security Today, April 7, 2023 - Microsoft and Fortra go after Cobalt Strike abusers, a new online criminal marketplace, and more
This episode reports on an attempt to take down the IT infrastructure behind stolen versions of the Cobalt Strike tool, the emerging Styx criminal marketplace and more
4/7/2023 • 5 minutes, 3 seconds
Cyber Security Today, April 5, 2023 - Two new ransomware strains found, TikTok fined millions in the U.K. and more
This episode of the podcast reports on ransomware, a compromised US income tax web site, the exploit of a backup program and more
4/5/2023 • 6 minutes, 45 seconds
Cyber Security Today, April 3, 2023 - Canadian-based ticketing agency admits data breach, and more on the proposed halt to AI systems
This episode reports on millions of Americans who took out loans being notified of a data breach, a criminal group trying to defraud companies hit by ransomware by bluffing and more
4/3/2023 • 6 minutes, 46 seconds
Cyber Security Today, Week in Review for the week ending Friday, March 31, 2023
This episode features a discussion on the call for a temporary halt in developing AI applications, the future of TikTok, World Backup Day and more
3/31/2023 • 22 minutes, 44 seconds
Cyber Security Today, March 31, 2023 -World Backup Day advice, new malware targeting Linux and more
This episode reports on how crooks take over Instagram accounts, a WiFI problem in Linux-based devices like access points and smartphones more
3/31/2023 • 5 minutes, 8 seconds
Cyber Security Today, March 29, 2023 - European Commission site for educators compromised, Lumen hit by ransomware, and more
This episode reports on a warning to Okta administrators, a data breach at an Australian financial corporation grows and more
3/29/2023 • 6 minutes, 46 seconds
Cyber Security Today, March 27, 2023 - Crooks are using email scams to steal computer hardware, a WooComerce warning, and more
This episode reports on crooks using business email compromise tactics to steal products, the latest phishing email scam and more
3/27/2023 • 8 minutes, 13 seconds
Cyber Security Today, Week in Review for Friday, March 24, 2023
This episode features a discussion on penetration testing, the cybersecurity maturing rankings of companies, rotating infosec jobs across government departments and the number of people on boards with cybersecurity experience
3/24/2023 • 21 minutes, 24 seconds
Cyber Security Today, March 24, 2023 - Malware found in the NuGet repository, a warning to lock down web applications and more
This episode reports on code in an online payment gateway modified to skim credit cards, a security problem with Windows' Snipping tool and more
3/24/2023 • 4 minutes, 52 seconds
Cyber Security Today, March 22, 2023 - ChatGPT4 is out, poorly-protected Linux servers are exploited, and more
This episode reports on a review of the latest version of ChatGPT, poor passwords are compromising Linux SSH servers and more
3/22/2023 • 4 minutes, 29 seconds
Cyber Security Today, March 20, 2023 - All eyes on TikTok, Hitachi Energy is the latest GoAnywhere MFT victim, and more
This episode reports on the latest news on TikTok, ransomware and a hack at an NBA provider
3/20/2023 • 6 minutes, 37 seconds
Cyber Security Today, Week in Review for the week ending Friday, March 17, 2023
This episode features a discussion on a Canadian parliamentary committee report on cybersecurity, the Newfoundland healthcare system ransomware attack and the cyber implications of the Silicon Valley Bank failure
3/17/2023 • 23 minutes, 14 seconds
Cyber Security Today, March 17, 2023 - More than 4 million Americans notified of a data breach, and the latest ransomware news
This episode reports on a huge data breach, information on the Trigona ransomware and more